<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ipfilter logging in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861314#M747432</link>
    <description>After modifying /etc/syslog.conf, you need to send HUP signal to syslogd and not to inetd.&lt;BR /&gt;&lt;BR /&gt;# vi /etc/syslog.conf&lt;BR /&gt;&lt;MAKE the="" changes=""&gt;&lt;BR /&gt;&lt;BR /&gt;# kill -1 `cat /var/run/syslogd.pid`&lt;BR /&gt;&lt;BR /&gt;&lt;/MAKE&gt;</description>
    <pubDate>Thu, 16 Sep 2004 17:58:38 GMT</pubDate>
    <dc:creator>Sundar_7</dc:creator>
    <dc:date>2004-09-16T17:58:38Z</dc:date>
    <item>
      <title>ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861313#M747431</link>
      <description>Hi, &lt;BR /&gt;hpux11.11v1. ipfilter A.03.05.08.&lt;BR /&gt;I want to get the messages from ipmon utility to go to its own logfile rather than the syslog.  Can anyone offer how I might achieve this?   syslog is definitely picking up ipmon mesgs; have tried adding line in /etc/syslog.conf:  log.info  (tab space)/var/adm/syslog/ipf.log .  Have inetd -c to reread. Does not appear to have meade any difference.&lt;BR /&gt;Thanks&lt;BR /&gt;Maria</description>
      <pubDate>Thu, 16 Sep 2004 17:53:51 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861313#M747431</guid>
      <dc:creator>Peter Gillis</dc:creator>
      <dc:date>2004-09-16T17:53:51Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861314#M747432</link>
      <description>After modifying /etc/syslog.conf, you need to send HUP signal to syslogd and not to inetd.&lt;BR /&gt;&lt;BR /&gt;# vi /etc/syslog.conf&lt;BR /&gt;&lt;MAKE the="" changes=""&gt;&lt;BR /&gt;&lt;BR /&gt;# kill -1 `cat /var/run/syslogd.pid`&lt;BR /&gt;&lt;BR /&gt;&lt;/MAKE&gt;</description>
      <pubDate>Thu, 16 Sep 2004 17:58:38 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861314#M747432</guid>
      <dc:creator>Sundar_7</dc:creator>
      <dc:date>2004-09-16T17:58:38Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861315#M747433</link>
      <description>Thanks Sundar, I ddi the reread of syslogd.  I am still not capturing the info in the /var/adm/syslog/ipf.log file.  Can anyone offer anything here?&lt;BR /&gt;Thanks&lt;BR /&gt;Maria</description>
      <pubDate>Thu, 16 Sep 2004 18:35:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861315#M747433</guid>
      <dc:creator>Peter Gillis</dc:creator>
      <dc:date>2004-09-16T18:35:07Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861316#M747434</link>
      <description>I dont know which facility IPFILTER uses to log the messages.&lt;BR /&gt;&lt;BR /&gt;How did you figure out IPFILTER uses log.info to log the messges ?&lt;BR /&gt;&lt;BR /&gt;I can only take a wild guess here :-)&lt;BR /&gt;&lt;BR /&gt;# vi /etc/syslog.conf&lt;BR /&gt;log.*&lt;TAB&gt;/var/adm/syslog/ipf.log&lt;BR /&gt;#&lt;BR /&gt;&lt;BR /&gt;# kill -1 `cat /var/run/syslog.pid`&lt;BR /&gt;&lt;BR /&gt;After the above kill command, check the /var/adm/syslog directory. You should atleast have an empty ipf.log file.&lt;/TAB&gt;</description>
      <pubDate>Thu, 16 Sep 2004 18:41:30 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861316#M747434</guid>
      <dc:creator>Sundar_7</dc:creator>
      <dc:date>2004-09-16T18:41:30Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861317#M747435</link>
      <description>Maria,&lt;BR /&gt;&lt;BR /&gt;  What options are you using with ipmon ? I understand from ipmon(8), if you use -s option with ipmon, it will send the log to /var/adm/syslog/syslog.log file.&lt;BR /&gt;&lt;BR /&gt;  ipmon -D &lt;FILENAME&gt;&lt;BR /&gt;&lt;BR /&gt;  This will start ipmon as a daemon and log the messages to &lt;FILENAME&gt;, not to syslog.log&lt;BR /&gt;&lt;BR /&gt;-- Sundar.&lt;/FILENAME&gt;&lt;/FILENAME&gt;</description>
      <pubDate>Thu, 16 Sep 2004 18:52:51 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861317#M747435</guid>
      <dc:creator>Sundar_7</dc:creator>
      <dc:date>2004-09-16T18:52:51Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861318#M747436</link>
      <description>Sundar,  I read man ipmon(8) - in the section under the -s part, there is some info about the LOG_INFO LOG_ERR..... that is why I tried.  I've propbably misunderstood something in reading it.  I got to the ipf.log by restarting ipmon with -D &amp;amp; filenanme ipf.log but no -s option.  Seems to have worked the trick.&lt;BR /&gt;Do you agree the log.info etc files could be used as have tried.</description>
      <pubDate>Sun, 19 Sep 2004 23:40:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861318#M747436</guid>
      <dc:creator>Peter Gillis</dc:creator>
      <dc:date>2004-09-19T23:40:17Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861319#M747437</link>
      <description>Also, don't forget to change IPMON_FLAGS in /etc/rc.config.d/ipfconf to reflect the flag changes, otherwise, you'll get the same old behavior on reboot.</description>
      <pubDate>Mon, 20 Sep 2004 12:18:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861319#M747437</guid>
      <dc:creator>Robert Fritz</dc:creator>
      <dc:date>2004-09-20T12:18:21Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861320#M747438</link>
      <description>Hi Maria,&lt;BR /&gt;&lt;BR /&gt;  I read the man page again for you :-). Yes I believe you have misunderstood the man page.&lt;BR /&gt;&lt;BR /&gt;  It is not log.info but rather local0.info&lt;BR /&gt; &lt;BR /&gt;  Try this&lt;BR /&gt;&lt;BR /&gt;  # vi /etc/syslog.conf&lt;BR /&gt;  local0.* /var/adm/syslog/ipf.log&lt;BR /&gt;  #&lt;BR /&gt;&lt;BR /&gt;  # kill -1 `cat /var/run/syslog.pid`&lt;BR /&gt; &lt;BR /&gt;  Now even if you use the -s option with ipmon, the messages from ipmon will be logged to /var/adm/syslog/ipf.log file.&lt;BR /&gt;&lt;BR /&gt;- Sundar.&lt;BR /&gt;</description>
      <pubDate>Mon, 20 Sep 2004 12:27:42 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861320#M747438</guid>
      <dc:creator>Sundar_7</dc:creator>
      <dc:date>2004-09-20T12:27:42Z</dc:date>
    </item>
    <item>
      <title>Re: ipfilter logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861321#M747439</link>
      <description>Thanks heaps Sundar, you have been extremely helpful.  I have used the edit on /etc/syslog.conf file -  local0.*  ....  option, and restarted syslogd.  thanks too, to Robert as your info haelped to get the whole picture.&lt;BR /&gt;</description>
      <pubDate>Sun, 26 Sep 2004 21:15:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-logging/m-p/4861321#M747439</guid>
      <dc:creator>Peter Gillis</dc:creator>
      <dc:date>2004-09-26T21:15:47Z</dc:date>
    </item>
  </channel>
</rss>

